Kaseya

Infrastructure Architect - Active Directory

Sunnyvale, CA Full Time

Kaseya® is the leading provider of complete IT infrastructure and security management solutions for Managed Service Providers (MSPs) and internal IT organizations worldwide powered by AI. Kaseya’s best-in-breed technologies allow organizations to efficiently manage and secure IT to drive sustained business success. Kaseya has achieved sustained, strong double-digit growth over the past several years and is backed by Insight Venture Partners www.insightpartners.com), a leading global private equity firm investing in high-growth technology and software companies that drive transformative change in the industries they serve.

Founded in 2000, Kaseya currently serves customers in over 20 countries across a wide variety of industries and manages over 15 million endpoints worldwide. To learn more about our company and our award-winning solutions, go to www.Kaseya.com and for more information on Kaseya’s culture.

Kaseya is not your typical company. We are not afraid to tell you exactly who we are and our expectations. The thousands of people that succeed at Kaseya are prepared to go above and beyond for the betterment of our customers.

Overview

We are seeking an Infrastructure Architect – Active Directory to serve as the technical authority for our enterprise identity infrastructure. This role owns the architecture, security posture, scalability, and modernization of Active Directory across a global environment. This is a senior individual contributor role focused on strategy, design, and complex problem-solving—not day-to-day administration.

Key Responsibilities

  • Define and own the long-term architecture and roadmap for Active Directory (on-prem and hybrid).
  • Design and support highly available, multi-site, multi-domain AD environments.
  • Lead AD modernization initiatives, including hybrid identity and cloud integration (Azure AD / Entra ID).
  • Establish engineering standards, governance, and best practices.
  • Drive security hardening efforts, including privileged access strategies, tiering models, and attack surface reduction.
  • Partner with Security to remediate vulnerabilities and improve monitoring and detection.
  • Ensure replication health, disaster recovery readiness, and business continuity.
  • Lead root cause analysis for high-impact incidents.
  • Develop automation using PowerShell and Infrastructure-as-Code principles.
  • Act as escalation point and technical mentor for senior engineers.

Required Qualifications

  • 10+ years of experience engineering and supporting enterprise Active Directory environments.
  • Deep expertise in AD DS architecture, trusts, replication, DNS, Group Policy, Kerberos, LDAP, and authentication protocols.
  • Strong experience with hybrid identity (Entra ID, AAD Connect, federation).
  • Proven track record leading large-scale AD migrations, consolidations, or security remediations.
  • Advanced PowerShell automation skills.
  • Strong understanding of high availability, disaster recovery, and identity security best practices.

Preferred

  • Experience with Zero Trust architecture, identity governance solutions, PKI, and relevant Microsoft or security certifications
  • This role requires both strategic thinking and deep technical execution to ensure a secure, resilient, and modern identity platform.

Budget: This role counts with a salary budget of $210,000.00-$230,000.00 with bonus. 

 

Join the Kaseya growth rocket ship and see how we are #ChangingLives !

Additional information
Kaseya provides equal employment opportunity to all employees and applicants without regard to race, religion, age, ancestry, gender, sex, sexual orientation, national origin, citizenship status, physical or mental disability, veteran status, marital status, or any other characteristic protected by applicable law.